diff options
author | Julian Stecklina <julian.stecklina@cyberus-technology.de> | 2024-06-19 00:12:16 +0200 |
---|---|---|
committer | github-actions[bot] <github-actions[bot]@users.noreply.github.com> | 2024-07-15 14:06:38 +0000 |
commit | f6a8567aac907cff29833be6058149cdb86e31f0 (patch) | |
tree | 69462776296a861eecf20ec376cc37e1f6d35364 | |
parent | 2e112cb1ae236dff51e16eb459598e1b37358c32 (diff) |
nixos/virtualbox-host: remove obsolete warnings backport-321010-to-release-24.05
Version 20240617 of the KVM patch allows for turning hardening on in VirtualBox. (cherry picked from commit 9cec4b55f69077d9e6d3d938fec055be54745020)
-rw-r--r-- | nixos/modules/virtualisation/virtualbox-host.nix | 14 |
1 files changed, 1 insertions, 13 deletions
diff --git a/nixos/modules/virtualisation/virtualbox-host.nix b/nixos/modules/virtualisation/virtualbox-host.nix index a34fe132ba7e1..4808652a542ad 100644 --- a/nixos/modules/virtualisation/virtualbox-host.nix +++ b/nixos/modules/virtualisation/virtualbox-host.nix @@ -89,7 +89,7 @@ in Enable KVM support for VirtualBox. This increases compatibility with Linux kernel versions, because the VirtualBox kernel modules are not required. - This option is incompatible with `enableHardening` and `addNetworkInterface`. + This option is incompatible with `addNetworkInterface`. Note: This is experimental. Please check https://github.com/cyberus-technology/virtualbox-kvm/issues. ''; @@ -136,18 +136,6 @@ in assertion = !cfg.addNetworkInterface; message = "VirtualBox KVM only supports standard NAT networking for VMs. Please turn off virtualisation.virtualbox.host.addNetworkInterface."; } - - { - assertion = !cfg.enableHardening; - message = "VirtualBox KVM is not compatible with hardening: Please turn off virtualisation.virtualbox.host.enableHardening."; - } - ]; - - warnings = [ - '' - KVM support in VirtualBox is experimental. Not all security features are available yet. - See: https://github.com/cyberus-technology/virtualbox-kvm/issues/12 - '' ]; }) (mkIf (!cfg.enableKvm) { boot.kernelModules = [ "vboxdrv" "vboxnetadp" "vboxnetflt" ]; |